May 21, 2024

Ransomware Prevention for MTC Ultimate

Rapid7 Ransomware Prevention is now available for all MTC Ultimate customers on Windows assets! Ransomware Prevention is an additional layer of protection on the endpoint designed to disrupt malicious actors and prevent ransomware attacks before they even start.

This patented technology utilizes dedicated ransomware prevention engines that provide reinforcements at each stage of an attack to strengthen defenses and minimize exposure:

  • Memory Injection Prevention: Blocks attempts to inject and hide malicious activity in legitimate processes
  • Living off the Land Prevention: Stops ransomware attackers from misusing tools built into systems to cause damage and prevents them from abusing those tools to cause damage
  • File & Process Manipulation Prevention: Prevents malware from making malicious modifications to files and processes
  • Data Encryption Prevention: Interrupts attempts to execute data encryption

On May 22, 2024, we will begin rolling out this new functionality to existing MTC Ultimate customers in Monitor-Only mode via a new R7 Endpoint Prevention Insight Agent component. Once the component is available, existing customers will be contacted by their Customer Advisor with onboarding information.

For information about configuring Endpoint Prevention policies, setting exclusions, and the difference between Monitor-Only and Active Mode, visit the documentation.

If you have questions about the rollout of the Ransomware Prevention functionality, contact your Customer Advisor directly.